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(U) Module 6 

(U) The Technical Work Role 

(U) This module will enable you to: 

• -f FS//GI//Nr) Identify the various technical roles that support the BR and PR/TT Bulk 
Metadata Programs 

• (U) Identity the responsibilities of each of the technical roles 

• (U) Recognize key points of the compliance certification process for mission 
systems and data flows 

• ( TS//S I //NF) P ractice applying BR and PR/TT authorities in real-life scenarios 
applicable to technical personnel 



(T8//S I //N F) (OGC Attorney): During this part of our trip, we discuss several topics of particular interest to those of you in technical roles, or supervising 
staff in a technical role, supporting the BR and PR/TT Bulk Metadata Programs. It is imporlant for you to remember that the essential support you provide 
enables all of the roles to perform their BR- and PR/TT-related work in compliance with applicable legal documents and relevant authorities As we 
discussed in Module 5, because of this great responsibility, technical personnel have been given tremendous access to touch the data in order to make it 
available and usable for the analysts. 

(TS//S I //NF) (Technical Character): In this module we are going to discuss the authorizations, roles, and responsibilities of the Technical Personnel. This 
module will enable you to; 

* (TC//S I //NF) Identify the various technical roles that support the BR and PR/TT Bulk Metadata Programs 
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• (U) Identify the responsibilities of each of the technical roles 

• (U) Recognize key points of the compliance certification process for mission systems and data flows 

• (TQ//G I //P^JF j Practice applying BR and PR/TT authorities in real-life scenarios applicable to technical personnel 
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(TS//S I // NF) (Technical Character): In Module 5, we explained there are two major areas where technical support is p rovided for the BR and PR/TT Bulk 
Metadata Programs. The first is the group of technical personnel who are responsible for the collection and metadata The second is the 

group responsible for storage, presentation, and maintenance of the BR and PR/TT metadata. In the next few screens, we will describe in more detail these 
two main areas of responsibility. 
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(U) Collection and Metadata 




(U//FOUQ)-(Technical Character): Let’s examine more closely the work roles resDonsihl|^Qnlh^Qllect£Qi^njUnetidalj^^^H^fci|^^ 
category of technical staff currently includes the technical professionals in Mission 

Capabilities staff within the Technology Directorate (TD) organizations. As we proceed through this module you will find out more about the roles in each of 
these three organizations. 



(TS//CI//NF ) Note that in addition to these key roles, there are other technical roles that are important to the implementation of these programs. These roles 
include individuals involved in the acquisition, processing, presentation, storage, retention, and support to operations which are authorized under the BR 
and PR/TT Orders. 
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(U) Collection and Metadata I 




s responsible for 




^ (TS//SI//^4F) Some of the rules that apply to I 

• Acquire data I 

• Identify all m 




authorized by the FISC 



I is promptly destroyed 
• Changes to systems require approval by the Chief of S3 
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(U) Collection and Metadatal 





XTS/ZOI/yT-JF) Some of the roles that 

• Provide reasonable assurance that all 
compliance with FISC Ord ers 

• Validate that only properly 




ire m 




j of the roles that 

Provide reasonable assurance that all 
FISC Orders. 

Validate that only properly metadata is forwarded to the 



re in compliance with the 
br analytic use. 
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• All metadata remains identil'iable as IWi’ 1 




(TS//SI//NF') (Technical Character^ Finally the Mission Capabilities, or TD. staff support the collection and metadata I 




processes byjnteg rating the 



(TS//SI//NF) Some of the rules that apply to Mission Capabilities staff within the Technology Directorate (TD) are to provide reasonable assurance that: 



* All of the metadata remains identifiable as PR/TT data 
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(TG//G I OT JF) This staff will rarely come in contact with human intelligible PR/TT metadata. Scroll over the logo to find out more about Mission Capabilities. 
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(U) Knowledge Check 1 

(U) Match the organization to its corresponding roles and responsibilities: 

1 ■ (TS//SI//NF) Staff in is responsible for developing the 



a) (U) Mission Capabilities 

b) 

c) 

d) (U) Homeland Mission Coordinators 



Js responsible for integrating the PR/TTI| 
Tincluding conducting related testing prior to system 



a) (U) Mission Capabilities 

b) 

c) 

d) (U) Homeland Mission Coordinators 




is responsible for| 




a) (U) Mission Capabilities 

b) 

c) 

d) (U) Homeland Mission Coordinators 




(U) (Technical Character): Let’s make a few notes in our travel journal and check to see what you remember from this topic! 
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For this knowledge check, simply display the correct answers using the format below: 

is responsible 




Question2JTS^SI£NF)StaffinMissior^^ the PR/TT| 
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-fPS/^SE^NF)- (Technical Character): Now let’s discuss the work roles responsible for the storage, presentation, and ngint|nanc^^otj^ie BR and PR/TT 
metadata. This category of technical staff currently includes the technical professionals in Mission Capabilities and 
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(U) Storage, Presentation, and Maintenance of the Metadata 





(TS//SI//NF) Mission Capabilities is 
responsible for: 

• Developing, maintaining, and operating 
repositories that store and present BR and 
PR/TT metadata 


1 (U) Mission Capabilities 1 













(TS//SI//NF) Some of the rules that apply to Mission Capabilities: 

• Metadata must be maintained in secure NSA repositories 

• Data must be identifiable as BR or PR/TT 

• Implement technical controls to prevent unauthorized access 

• Restrict intelligence analysis queries to RAS-approved identifiers (e.g, the EAR) 

• Ensure intelligence analysis queries remain within authorized number of hops 

• Create auditable records of all intelligence analysis queries 

• Destroy all metadata before the end of the five year authorized retention period (no 
exceptions!) 

• Changes to systems must be certified by the TD Compliance Office before 
implementation 

• Automated queries are prohibited without approval 
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■ ( j:S // SI //NF) (Technical Character): You will recall that Mission Capabilities supports collection and metadata ^^^^^|and other branches of Mission 
Capabilities support storage, presentation, and maintenance of the metadata. For the latter, the staff is typically database management and user interface 
professionals who are responsible for developing, maintaining, and operating the ^^^^^that store and present BR and PR/TT metadata, as well as 

(TS//S I^/MP) Some of the rules that apply to Mission Capabilities include: 

• Metadata must be maintained in secure NSA repositories 

• Data items must be identifiable as BR or PR/TT metadata 

• Implement technical controls to prevent unauthorized access 

• Implement technical controls to restrict intelligence analysis queries to RAS-approved identifiers (e.g. the EAR) 

• Implement technical controls to provide reasonable assurance that the results of intelligence analysis queries remain within the authorized number 
of hops 

• Create auditable records of all intelligence analysis queries 

• Destroy all metadata before the end of the five year authorized retention period (no exceptions for backup data) 




■ { ■ TS//S I //NF) This staff will come in contact with human intelliaible BR and PR/TT metadata. 
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(TS//SI//NF) Protocol Exploitation is 
responsible for: 

• Ensuring data is normalized and is 
presented in a usable format 

• Providing support to intelligence analysts 



lerforms unique functions including: 



fF S//SI/;TJF) -For BR,|| 

• Normalizing 

• Reviewing data to ensure records include only data | 

• Assi st in ensuring that data to be presented to analysts wi 1 1 be in a usable format 

• Providing operational support to intelligence analysts; support is limited to RAS-approved identifiers 
within the authorized number of hops 



haracter): As you recall for kk/ i i . 



■Droviaes support to! 



I for 



(TS/ 

BR, ^^^^^^^^^^ffessists in ensuring accurate representation and integrity of the m etadata. In this contex t 

tech upporting role for intelligence analysts. Because of this dual role.^ 

function it is performing at the time. Wh ennerf o^^ role, the technical rules apply which allow broader access to the data. However, when 

supporting the intelligence analyst, the staff must operate within the same rules applicable to the intelligence analyst which are more 



performs both a 
must apply the rules governing the specific 
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restrictive. 

(TS//SI//NF) For performs unique functions to include; 

• Normalizing all of the disparate data formats 

• Reviewing the data to validate that the records include only data 

• Assist in ensuring that the data to be presented to the analysts will be in a usable format 

• Providing operational support as necessary to intelligence analysts; support is limited to RAS-approved identifiers within the authorized number of 
hops 
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(U) Knowledge Check 2 

4. t^S^SI Z/NF) W hich one of these is n^ one of the roles and responsibilities of the technical personnel? 

a) (U//FOUO) Manipulating and validating the metadata to make it usable for intelligence analysis 
purposes 

b) (^S//SI //NF) Developing new tools to support querying of BR and PR/TT metadata 

c) - (S// SI#RE-b)- Running an intelligence analysis query using a RAS-approved identifier for an analyst 
who is experiencing problems recreating their query results 

d) -(StfSI/ZR E fc) Running an intelligence analysis query using a non -RAS-approved identifier for 
an analyst who is experiencing problems recreating their query results 

e) (U) Both C and D 

5. (TS//SI//NF)|^^^^^^^^^^H3rovides support to the BR program by doing the following (check all 
that apply): 

a) (U) Normalizing all of the disparate data formats 

b) (U) Reviewing the data to validate that the records include data \l 



c) (U) Ensuring metadata is maintained in secure NSA repositories. 

d) (U) Assist in ensuring that the data to be presented to the analysts will be in a usable format 

e) (U) Destroy all metadata before the end of the five year authorized retention period (no exceptions 
for backup data 

f) -(S#Sf#REt]r Providing operational support as necessary to intelligence analysts on RAS- 

approved identifiers within the authorized number of hops 



6. Database niaoaflfilUfint and user interface professionals in 

maintain, and operate the ^^^^Hthat store and present BR and PR/TT metadata, and develop 
algorithms/processes that prepare, optimize, and characterize the metadata for analytic utilization. 

a) 

b) 

c) 

d) (U) Homeland Mission Coordinators 



develop. 



(U) (Technical Character): Let’s check what you remember from this topic! 



Question 4. Correct! Running an intelligence analysis query using a non- RAS-approved identifier for an analyst who is experiencing problems 
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recreating their query results is not one of the roles and responsibilities of the technical personnel. 



I- Incorrect. The correct answer is d). Running an intelligence analysis query using a non-RAS-approved identifier for an analyst who is 
experiencing problems recreating their query results is one of the roles and responsibilities of the technical personnel. 



Question 5. fT G//G + // NF^ Correct! m|^^^^^^^^^Drovides support to the BR program by doing the following; 

a) (U) Normalizing all of the disparate data formats 

b) (U) Reviewing the data to validate that the records include data 
d) (U) Assist in ensuring that the data to be presented to the anaiysts wiii be in a usabie format 

f) (G//G i //R Eb) Providing operationai support as necessary to inteiiigence anaiysts on RAG-approved identifiers within the authorized 
number of 

■fF G//G I //Nr) Incorrect provides support to the BR program by doing the following; 

a) (U) Normalizing aii of the disparate data formats 

b) (U) Reviewing the data to validate that the records include data 
d) (U) Assist in ensuring that the data to be presented to the analysts will be in a usable format 

f) (Q//Q i //REL ) Providing operational support as necessary to intelligence analysts on RAG-approved identifiers within the authorized 
number of hops 






on 6. (TS//SI//NF)- Correct! Database management and user interface professionals in Mission Capabilities develop, maintain, and operat' 
hat store and present BR and PR/TT metadata, and develop algorithms/processes that prepare, optimize, and characterize the metadatal 




(TS//SI//NF)±^m^LThe correct answer is a). Database management and user interface professionals in Mission Capabilities develop, maintain, and 
operate th^^^^^Hltha^toi^and present BR and PR/TT metadata, and develop algorithms/processes that prepare, optimize, and characterize the 
metadata 
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(U) Guidelines governing the certification process are maintained by the TD Compliance 
Office 

(U) Compliance should be integrated into the development process 
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(Technical Character): Next we v 
technologies to include those supporting the 1 
or FISA data. Guidelines governing the certifii 
applicable laws and authorities and supports 
systems that meet the diverse needs of NS A 


vill discuss the compliance certification process used by technical personnel who develop mission 
3R and PR/TT Programs. Compliance certification is a mandatory check for all systems handling U.S. person 
cation process are maintained by the TD Compliance Office. This process supports compliance with the 
the NSA Way. The NSA Way is a unified framework for building large (or small), complex, primarily software 
missions. An important point is that compliance should be integrated into the development process. 
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(TG//G I // NF) (Technical Character): The goal of the compliance certification process is to integrate compliance into the development phase. The gates 
shown in the compliance process represent distinct requirements that must be satisfied in order to provide reasonable assurance of compliance. The 
architects of the new technology develop engineering documents to support these requirements. The TD certification group reviews the artifacts to verify 
the compliance process requirements are being met. 

" (TG // GI//Nr ) The compliance certification process begins by registering in Access the site by typing your web 

browser. Once registration is complete, you will receive a requirements pa 

(U//FOUO) Compliance is an ongoing process, change or update to previously certified software requires recertifjj^ta^^jgj^j compliant. In other 
words, if you develop a modification or upgrade to the software, then you need to register the software modification in^^^^^^^^Vto begin the 
recertification process. 
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“ (TQ//QI//Nr) Formal approval is required for all new and/or different BR and PR/TT systems. Under no circumstances can a change be made to a software 
system (even fortesting purposes) without going through the compliance certification (or recertification) process. 
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(U) The Dataflow Process 

(U//FOUO) The goal of dataflow governance is to provide reasonable assurance of 
accountability and compliance for NSA mission data as it moves throughout NSA systems 

(U//FOUO) Triggers for entering the dataflow governance process include (but are not 
limited 

• Adding 

• Replacing an existing repository 

• Inserting a process or system into the flow 

• Adding a new mission element 

• Legacy migration 



fFS/fSWNF} (Technical Character): The Collection Strategies and Requirements Center (CSRC) is responsible for dataflow governance, which provides 
reasonable assurance of accountability and compliance for NSA mission data as it moves throughout NSA systems. This is critical to protect the data, and 
when we are talking about volumes of U.S. person data you can understand why this is so important. 

“fFS/^SW4F)-The process begins by submitting a dataflow request (usually done by the system builder or access owner) for a new dataflow solution. Then 
some level of research is needed to determine the type of request and associated needs. Once the requirements are determined, a new processing 
capability may be developed, or an existing flow may be reconfigured to meet the new requirement. The solution must then be tested and obtain official 
sign-off at which time CSRC authorization to operate would be issued. 

(U//FOUOHr^eneranrjgger^oi^^ dataflow governance process include (but are not limited to): 

Replacing an existing repository 
Inserting a process or system into the flow 
Adding a new mission element 

Legacy migration (moving an existing unmanaged flow to a managed flow) 

( I S//SI//NF) Formal approval is required for all new and/or different BR and PR/TT data flows. Under no circumstances can a change be made to a data 
flow (even for testing purposes) without going through the dataflow governance process. 

(U//FQyO) To find out more about the dataflow process, please refer to the Dataflow webpage by typing ‘go dataflow’ in your web browser. 
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a) (U) Entering a ticket into| 

b) (U//FOUO) Contacting NSA Way Team 

c) (U//FOUO) Entering the new software or system intojl 

d) (U) All of the above 

8. on for entering the dataflow governance process? 

b) (U) Replacing an existing repository 

c) (U) Inserting a process or system into the flow 

d) (U) Modifying a bulk metadata query 

e) (U) Moving an existing unmanaged flow to a managed flow 

9. (TG//G I //Nr )- Before an analytic software upgrade is released on a system that handles BR or PR/TT data, 

the developers would need to in order to remain compliant. 

a) (U) contact the CSRC and undergo comyiancygcertificati 

b) (U) register the software release in^^^^^^^^Hand undergo compliance recertification 

c) (U) obtain OGC approval 

d) (U) register your system with ODOC 



(U) (Technical Character): Let’s make a few notes in our travel journal and check to see what you remember from this topic! 




DO) Correct! The compliance certification process for new systems is triggered by entering the new software or system in 

ct. The correct answer is c). The compliance certification process for new systems is triggered by entering the new software or system in 



Question 8. (U//F0UQ) Correct! Modifying a bulk metadata query is not a reason for entering the dataflow governance process. 

(U//FOUO) Incorrect. The correct answer is d). Modifying a bulk metadata query is not a reason for entering the dataflow governance process. 

Question 9. (U// FOUO) Correct! Befor^r^nalvtic software upgrade is released on a system that handles BR or PR/TT data, the developers would need to 
register the software release in undergo compliance recertification in order to remain compliant. 

(U//F O y O ) Incorrect. The corre^^^^^^^^^efoi^ar^nalytic software upgrade is released on a system that handles BR or PR/TT data, the developers 
would need to register the software re li i i in undergo compliance recertification in order to remain compliant. 
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(U) Practice Scenario 1 

(^S//S-WNF) You are one of the^^^^^^^^|cleared technic^^^^^^^^ponsible for metadata management 
within NSAs metadata refjositor^s. You are working with other ^^^^^^^H-cleared developers on new query 
processes and tools. You set of properly marked recor y your team for development 

purposes from the PR/TT metadata. This set of PR/TT metadata records is stored on a physically isolated system 
within NSAs secure network and is accessible only to the members of your team. Are your actions in 
compliance with the terms of the PR/TT Orders? 

(U) Please select the BEST answer: 

a) -(TS//SWNF) Yes, because the PR/TT Orders explicitly authorize properly trained technical 
personnel to develop and test new technologies to be used with the PR/TT metadata. 

b) (TS//SI//NF) No, because the PR/TT Orders prohibit the use of new query processes against any of 
the PR/TT metadata. 

markings and the physically isolated system to restrict access to 

those records to|HH||Hcleared personnel. 

d) (U) None of the above are correct. 


(U) (Technical Character): Now let’s pr 


actice what we have learned using real-life scenarios. Carefully read the scenario and then select the best answer. 


ANSWER: 

a) (TS//SI//NF) Incorrect. This statement is accurate, but this is not what makes your actions compliant. The correct answer is c). Yes, because the 

^^^^^^^^^R/TT metadata records still carry the unique markings and software controls on the physically isolated system to restrict access to 
those records to lea red personnel. 

b) ^T S/[S I//N F^ ncorrect. The current Court Orders authorize NSA to develop new query processes. The correct answer is c). Yes, because the 
^^^^^^^■PR/TT metadata records still carry the unique markings and software controls on the physically isolated system to restrict access to 

c) (TS//SWJf)-Correct! The best answer is c). Yes, because the metadata. reco rd.^tl]] carry the unique markings and 

software controls on the physically isolated system to restric^^^^^^^^^ e records tomm|^cleared personnel. 

d) {TS//SI//NF)- Incorrect. The correct answer is c). Yes, because the^^^^^^^^|PR/TT metad^je^rds still carry the unique markings and 

software controls on the physically isolated system to restrict access to those records to eared personnel. 
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cleared developer of contact chaining analytic tools. Your 
efing to demonstrate your progress on the latest version of the tool. 
You provide the briefing, which includes screen shots of the tool and query results generated by the tool. Are 
your actions in compiiance with the Orders? 

(U) Please select the BEST answer: 



(U) Practice ScenarioJ 

~S//8 l // NF)-You are a [ 

management chain has requestea a^ri' 
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(U//F0UO) No, uniess aii of those or^om^eveloDment team and aii those who 
attended your briefing heid current^^^^^^^Hciearances. 

(U) No, because the Court Orders do not permit testing of tools under development using 
real data. 

(U) Yes, as long as the query results shared during the briefing are never used for 
intelligence analysis purposes. 

(U) None of the above are correct. 



ANSWER: 

a) (U) Correct! This is the best answer. You cannot provide a demonstration uniess aii of the individuais who attended the briefing have 
compieted the required training and received the necessary accesses. 

b) (U//FO UO) Incorrect. Th e correct answer is a). No, unless all of those on your development team and all those who attended your briefing held 

cu rre nt ^ n 

c) (U//FO UO)Jncorrect._Th e correct answer is a). No, unless all of those on your development team and all those who attended your briefing held 
current ^^^^^^^^Llea ranees. 

d) (U//FO UO) Incorrect. Th e correct answer is a). No, unless all of those on your development team and all those who attended your briefing held 
current ^^^^^^^^Hclea ranees. 
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(U) Practice Scenario 3 

{^^^/SI//N£).You are one of the^^^^^^^^Bcleared technical personnel responsible for metadata 
management within NSA’s metadata repositories. You are responsible for the maintenance of backup 
systems and Continuity of Operations (COOP) planning and implementation. You have contro^veMthe 
backup tapes that hold PR/TT metadata collected since the inception of the PR/TT authority^^^H In 
accordance with your COOP plans, you know that if a disaster strikes and NSA’s online metaoat^^ 
repositories are destroyed, you could use these backup tapes to repopulate the repositories with PR/TT 
metadata. Although the backup tapes contain information older than five years, the processes you would 
employ to repopulate the online analytic metadata repositories would select only metadata collected within 
the last five years. Is your maintenance of backup tapes holding PR/TT metadata collected more than five 
years ago in compliance with the terms of the PR/TT Orders? 

(U) Please select the BEST answer: 

a) (TS//SI#NF)-Yes, because the older-than-five-years PR/TT metadata on the backup tapes 
will never be available for intelligence analysis purposes. 

b) ( TS//S I // N^) Yes, because the PR/TT Orders specifically authorize NSAto maintain backup 
tapes of the PR/TT metadata. 

c) (TS//S+#NP^) No, because the PR/TT Orders mandate the destruction of the PR/TT 
metadata no later than five years after its initial collection, with no exception for 
metadata on backup tapes. 

d) (U) None of the above are correct. 



ANSWER: 

a) ( T Sf/SWNF-) Incorrect. The correct answer is c). No, because the PR/TT Orders mandate the destruction of the PR/TT metadata no later than five 
years after its initial collection, with no exception for metadata on backup tapes. This is different from other authorities, for example FAA702 does 
not require the destruction of data in the archives. 

b) (^S/fSW/NF) Incorrect. The correct answer is c). No, because the PR/TT Orders mandate the destruction of the PR/TT metadata no later than five 
years after its initial collection, with no exception for metadata on backup tapes. 

c) (TS//SJ//NF) Correct! This is the best answer. No, because the PR/TT Orders mandate the destruction of the PR/TT metadata no later than 
five years after its initial collection, with no exception for metadata on backup tapes. 

d) (TS//SI//NF) Incorrect. The correct answer is c). No, because the PR/TT Orders mandate the destruction of the PR/TT metadata no later than five 
years after its initial collection, with no exception for metadata on backup tapes. 
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(U) Now that you have completed this module you should be able to: 

• ( TS//S I //N F) Identify the various technical roles that support the BR and PR/TT Bulk 
Metadata Programs 

• (U) Identify the responsibilities of each of the technical roles 

• (U) Recognize key points of the compliance certification process for mission 
systems and data flows 

• (TS//SI//NF)-Practice applying BR and PR/TT authorities in real-life scenarios 
applicable to technical personnel 



(U//F QUQ > If you have questions or wish to find out more, please contact your manager or 
any of the following BR or PR/TT points of contact: 



TD Compliance Office website: go td compliance 
ali as : 

Phone: 

OGC website: go GC 



Oversight and Compliance email alias: DL SV42_all 



I Character): As we stated earlier in the course, the bulk metadata includes sensitive data that must be protected accordingly. By 
nature of the kinds of technical support provided to the BR and PR/TT programs, technical personnel have the authority and unrestricted access to touch 
unminimized/unevaluated (or raw), and very sensitive data (that contains a lot of U.S. person identifiers). Remember, we need to maintain a clear 
distinction between the roles of technical and analytical personnel. All personnel are held to a high standard of integrity, but in your technical role you must 
be particularly cautious because the tools you work with do not provide the same safeguards as those tools used by the analytical personnel. 
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( TS//S I //NP) In conclusion, it is your responsibility to keep the BR and PR/TT information within the confines of those who have the proper authorizations to 
touch and view the data. 

(U) Now that we have completed this part of our road trip, you should be able to: 

• ( TS//8l//Nr ) Identify the various technical roles that support the BR and PR/TT Bulk Metadata Programs 

• (U) Identify the responsibilities of each of the technical roles 

• (U) Recognize key points of the compliance certification process for mission systems and data flows 

• ( TS//8l//Nr) Practice applying BR and PR/TT authorities in real-life scenarios applicable to technical personnel 

(U) You are encouraged to reach out to your management or to any of the points of contact listed here if you have any questions or if you want to find out 
more. 
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• (U) You will view the questions in a separate Assessment Questions Document 
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• (U) You will enter your responses in a separate QuestionMark online answer sheet 

• (U) You will have only one attempt to successfully complete the assessment 

• (U) Allow yourself sufficient time (approximately 30 minutes) to complete the assessment 



(U) To Complete the Assessment: 



• (U) Click the link to open the Assessment Questions Document 



• (U) Go to the VUport SumTotal Content Player page, click on the Assessment link, and follow the 
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instructions to complete the required exam 



(U/ ffOU Qj (OGC Attorney); The final part of your trip will be to successfully complete the assessment for the course. Please be aware that for the 
assessment you will view the questions in a pdf file and enter your responses in a separate QuestionMark online answer sheet. Please be sure that you 
open the .pdf with the questions first before opening the QuestionMark online answer sheet, You will have one attempt to complete the assessment. Please 
allow yourself sufficient time (approximately 30 minutes) to complete the assessment 



(U //FQUQ) Please click the Assessment Questions Document link to open the pdf question file and keep the window open Then go to the VUport 
SumTotal Content Player page, click on the Assessment link on the left, and follow the instructions to complete the required exam. 
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